Form3 is a fully managed payment technology service that helps banks and regulated FinTech companies move money faster. A robust AWS cloud-processing platform featuring multiple-sc
Senior Cloud Security Engineer
Location
Germany + 4 moreAll locations: Germany | Netherlands | Spain | Portugal | United Kingdom
Posted
7 days ago
Salary
0
Seniority
Senior
Job Description
Senior Cloud Security Engineer
Form3
Senior Cloud Security Engineer Location: Germany, Netherlands, Spain, Portugal & UK 100% Remote You’ll design, implement, and maintain defensive security controls that protect our high-availability, multi-cloud payment systems built on modern technologies. Your deep understanding of current threats, exploitation methods, and risk trade-offs will enable you to guide engineering teams on effective security features and ensure the right defensive measures are prioritised. WE’RE LOOKING FOR Essential - You live on the linux command line - Your current research and experience back up your opinionated views on security practices and tradeoffs, which you love to openly debate and willingly share - You’re sought after for your security engineering expertise, having built multiple security controls that are actively proven in large production estates - Your security expertise extends to at least one public cloud, including essential security features and long-term security hardening practices - You have a good grounding in Kubernetes security and have ideally developed complex, heavily customised multi-cluser environments - You appreciate building systems with good engineering practices and may have a background in software engineering at scale - You’re open to being a part of our on-call rota, ready to respond if we have a severe, platform-impacting security tooling failure or need second-line security incident response assistance Desirable - You have an interest in offensive security, potentially including participation in CTFs and past experience as a red team operator or pen tester - You’ve developed security configurations in multiple public and private clouds - You’re a confident presenter and have accelerated appreciation of security across engineering teams - You regularly support building and analysis of threat models using a well defined process - You have experience securing data centers and networking devices - You’re terrified by supply chain and CI/CD security, but have good patterns for reducing the risks - Your engineering experiences matches Form3’s tech stack – including Golang and Terraform TECH STACK ⚙️ - AWS, GCP, Azure and private Data Centers - Kubernetes, Helm, Flux - Distributed systems, mostly Golang based with CockroachDB and NATS - SIEM/SOAR, EDR, CNAPP, and a suite of open source tools with custom integrations THE TEAM You will join a team of defensive security engineers directly maintaining and expanding security controls as well as advising the wider platform and application engineers within our R&D team. We report into the CISO and work alongside the other functional pillars of InfoSec. HIRING LOCATIONS We are a remote-first organisation and are able to accept applications from the following countries; Germany, Netherlands, Spain, Portugal & UK
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Senior Cloud Security Engineer - Kubernetes
Form3Form3 is a fully managed payment technology service that helps banks and regulated FinTech companies move money faster. A robust AWS cloud-processing platform featuring multiple-sc
Senior Cloud Security Engineer (Kubernetes) Location 100% Remote (UK/EU*) You will build and run defensive security controls for highly-available multi-cloud payment systems running the latest technology. You understand current threats, exploitation paths and risk tradeoffs in order to advise engineering teams on beneficial security features as well as prioritise management of defensive controls. WE’RE LOOKING FOR Essential - You live on the linux command line - Your current research and experience back up your opinionated views on security practices and tradeoffs, which you love to openly debate and willingly share - You’re sought after for your Kubernetes security expertise and have developed complex heavily customised multi-cluser environments - Your security expertise extends to at least one public cloud, including essential security features and long-term security hardening practices - You appreciate building systems with good engineering practices and may have a background in software engineering at scale - You’re open to being a part of our on-call rota, ready to respond if we have a severe, platform-impacting security tooling failure or need second-line security incident response assistance Desirable - You have an interest in offensive security, potentially including participation in CTFs and past experience as a red team operator or pen tester - You’ve developed security configurations in multiple public and private clouds - You’re a confident presenter and have accelerated appreciation of security across engineering teams - You regularly support building and analysis of threat models using a well defined process - You have experience securing data centers and networking devices - You’re terrified by supply chain and CI/CD security, but have good patterns for reducing the risks - Your engineering experiences matches Form3’s tech stack – including Golang and Terraform TECH STACK - AWS, GCP, Azure and private Data Centers - Kubernetes, Helm, Flux - Distributed systems, mostly Golang based with CockroachDB and NATS - SIEM/SOAR, EDR, CNAPP, and a suite of open source tools with custom integrations THE TEAM You will join a team of defensive security engineers directly maintaining and expanding security controls as well as advising the wider platform and application engineers within our R&D team. We report into the CISO and work alongside the other functional pillars of InfoSec. We are a remote-first organisation and are able to accept applications from the following countries; Germany, Netherlands, Spain, Portugal & UK
IT Subject Matter Expert
ArdentYour "ALL IN" Location Intelligence | Digital Transformation | Data Science & Analytics experts
Role Description Ardent is seeking an IT Subject Matter Expert to support enterprise IT initiatives within a federal environment. This role will provide technical expertise, operational support, and stakeholder coordination across enterprise systems, governance activities, and modernization efforts. The position will support technical initiatives requiring strong analytical, problem-solving, and enterprise IT experience. Responsibilities and Duties - Provide subject matter expertise supporting enterprise IT governance and modernization initiatives. - Support technical governance activities, operational planning, and strategic IT initiatives. - Provide recommendations regarding enterprise IT processes, systems, and operational improvements. - Collaborate with stakeholders, technical teams, and leadership to support program objectives. - Support development of technical documentation, reports, and briefings. - Assist with analysis of enterprise IT environments, systems, and operational requirements. - Participate in governance meetings, technical reviews, and planning discussions. - Provide guidance on IT standards, best practices, and operational processes. - Support coordination across technical and business teams to ensure alignment with program goals. - Contribute to continuous improvement and modernization efforts across enterprise IT operations. Qualifications - Bachelor’s degree in Computer Science, Engineering, or related field. - Minimum of 10 years of experience in Information Technology environments. - Minimum of 4 years of experience supporting enterprise IT initiatives or enterprise-scale environments. - Experience supporting technical governance, enterprise IT operations, or modernization efforts. - Strong communication and stakeholder coordination skills. - Ability to support complex technical and operational initiatives in a federal environment. - Strong analytical, organizational, and problem-solving abilities. Preferred Qualifications - Experience supporting federal government environments. - Experience supporting IT governance, enterprise architecture, or modernization programs. - Familiarity with enterprise IT infrastructure, cybersecurity, or cloud environments. - Experience developing technical reports, governance documentation, or executive briefings. - Experience collaborating across multidisciplinary technical teams. Requirements Due to the nature of the work we support, all candidates in consideration for this role must be willing to undergo the government issued background investigation process. We highly encourage all Veterans and those with disabilities to apply. Benefits - Competitive pay. - Comprehensive health coverage. - Flexible PTO. - Federal holidays off. - Tuition reimbursement. - Professional development support. - Wellness stipends. - A culture that values and rewards hard work, dedication, and adaptability. Company Description Ardent hires people who want more than a job — they want to serve a mission that matters. Our teams support the federal government’s most critical national security and defense priorities, helping protect the nation, strengthen resilience, and advance the technologies and capabilities that keep America secure.
• This position will be fully remote and will be located in Vancouver, BC • Establish & maintain productive and respectful relationships with the delivery team, practice management, and client management team. • Deliver timely engagements and works closely with Practice Directors to drive training and education, career development, performance development, and collaboration across the team • Confirm that work is of the highest quality as per Optiv’s quality standards, by reviewing the work provided by other members. • Lead in capacity planning and HW specification recommendation efforts. • Lead in all Technology deployment activities, connector configuration, custom rule development, workflow configuration and development, and third-party system integration. • Lead in business impact analysis, risk analysis, recovery planning efforts. • Lead User Acceptance Testing and bug-related engineering efforts. • Design, implement and educate on specific technology build processes, code migration, and source control use. • Provide knowledge transfer and post production support activities as necessary. • Complete administrative project tasks like time and expense entry, status reporting, and project completion reporting.
• Outline the security architecture strategy for cloud authentication, authorization, workload identity, and agent identity across NVIDIA cloud platforms, AI-enabled systems, enterprise connectors, services, and automation. • Outline processes for establishing, linking, authorizing, delegating, auditing, and retiring human, workload, service, and autonomous agent identities, including attestation-supported identity issuance and certificate-based or temporary credentials. • Develop authorization and delegation frameworks for AI agents and enterprise connectors, encompassing consent, token exchange, prioritized authority, sensitive-action approval, revocation, and protections against confused-deputy behavior. • Lead architecture reviews and threat modeling for high-risk identity and access flows, turning ambiguous scenarios into practical controls that engineering teams can build and verify. • Establish identity lifecycle, telemetry, and emergency-disablement patterns for token issuance, policy decisions, privilege elevation, tool invocation, data access, credential rotation, grant revocation, and compromised or untrusted identities. • Convert emerging AI security risks into authentication, authorization, audit, and execution-boundary requirements. • Partner with identity, cloud, platform, application, AI security, governance, detection, and incident response teams to align architecture decisions with risk strategy and operational reality. • Build reusable architecture patterns, decision records, exception criteria, and implementation mentorship, staying engaged through adoption, validation, and residual-risk closure.



